CVE-2025-5605: WSO2 Management Console – Authentication Bypass

CVE-2025-5605: WSO2 Management Console - Authentication Bypass-渗透云记 - 专注于网络安全与技术分享
CVE-2025-5605: WSO2 Management Console – Authentication Bypass
此内容为付费阅读,请付费后查看
100积分
付费阅读

漏洞标题

CVE-2025-5605: WSO2 Management Console – Authentication Bypass

漏洞描述

An authentication bypass vulnerability exists in the Management Console of multiple WSO2 products. A malicious actor with access to the console can manipulate the request URI to bypass authentication and access certain restricted resources, resulting in partial information disclosure. The known exposure from this issue is limited to memory statistics. While the vulnerability does not allow full account compromise, it still enables unauthorized access to internal system details.

PoC代码

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享